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DETAILED ACTION 

1. Claims 1-3, 5-7, 10-12, and 15-1 9 are pending and have been examined. 

Terminal Disclaimer 

2. The terminal disclaimer filed on 1-6-06 disclaiming the terminal portion of any 
patent granted on this application which would extend beyond the expiration date of any 
Patent that may grant from US Application 09/817,322 has been reviewed and is 
accepted. The terminal disclaimer has been recorded. 

Response to Arguments 

3. Applicant's arguments, filed 1-06-06, with respect to claims 1-3, 5-7, 10-12, and 
15-19 have been fully considered and, when taken together with the language made to 
the language of the claims via the latest amendment and the Terminal Disclaimer filed 
1-6-06, are persuasive in overcoming all the remaining rejections of the claims. 

Allowable Subject Matter 

4. Claims 1-3, 5-7, 10-12, and 15-19 are allowed. 

5. The following is an examiner's statement of reasons for allowance: 

The closest prior art in the field, Bladlow et al., US 6,115,040, and Schneier, 
Applied Cryptography 2""^ Edition, Oct. 1 995, pages 50-51 , do not teach the features 
found in the independent claims of: 
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As for claim 1 , a communications processor configured as that of the claimed 
invention that: generates a session identifier for use by a plurality of concurrently 
operating applications and that generates an encryption key useable by an application 
for encrypting personal record information to be conveyed in URL data; and wherein the 
communications processor sends additional parameters to a managing application for 
storage where the additional parameters include one or more of: an authentication 
service identifier, a language identifier, a URL directing a browser to a starting 
application upon termination of a session, a URL for acquiring a web page that provides 
a log-on menu for initiation of a new user session, a URL to be contacted upon 
occurrence of a predetermined event, or an identification of a type of predetermined 
event. 

As for claim 2, a communications processor for initiating generation of a session 
identifier particular to a user initiated session and used by a plurality of concurrently 
operating applications to uniquely identify the session, and generation of an encryption 
key used by a first application for encrypting personal record parameters conveyed in 
URL data; where the generation is in response to validation of user identification 
information, 

As for claim 7, an encryption key generator that randomly generates an 
encryption key particular to a user-initiated session, the generation in response to a 
session initiation request, the key being for common use by a plurality of concurrently 
operating applications in encrypting data associated with a personal record, 
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As for claim 10, a communications processor for communicating a session 
identifier to a first application, and which communicates the session identifier to another 
application of a plurality of concurrently operating applications in response to a request 
to receive the generated session identifier, and where said communications processor 
includes said generated session identifier in different types of command messages 
communicated to applications of said plurality of concurrently operating applications, 

As for claim 1 1, a managing application that generates a session identifier 
particular to a user-initiated session, and that generates an encryption key for use by an 
application in encrypting personal record parameters conveyed in URL data, in 
response to a session-initiation request from that application, and where the key is used 
in communicating the session identifier to the application, and where the key is further 
for the common use of a plurality of concurrently operating applicationsjn encrypting 
data associated with a personal record. 

As for claim 15, a managing application that generates a session identifier 
particular to a user-initiated session, in response to receiving a session-initiation request 
from a first application, and where the managing application includes the session 
identifier in different types of command messages communicated to a plurality of 
concurrently operating applications. 

As for claim 16, a method used by a first application including; generation of a 
session identifier particular to a user-initiated session; and generation of an encryption 
key useable by the application for encrypting personal record information to be 
conveyed in URL data; and communicating parameters to a managing application for 
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storage, where the parameters include one or more of, an authentication service 
identifier, a language identifier, a URL directing a browser to a starting application upon 
termination of a session, a URL for acquiring a web page that provides a log-on menu 
for initiation of a new user session, a URL to be contacted upon occurrence of a 
predetermined event, or an identification of a type of predetermined event, 

As for claim 17, a method used by a managing application including the steps of; 
generating a session identifier particular to a user initiated session and for useable by 
plurality of concurrently operating applications to uniquely identify the session; 
generating an encryption key for use by said first application in encrypting personal 
record parameters conveyed in URL data; where the encryption key is generated 
randomly in response to a session-initiation request by the user, and where the key is 
unique to the session; the key being for common use by a plurality of concurrently 
operating applications in encrypting data associated with a personal record; and 
communicating said session identifier and said encryption key to the first application 
and to another application of the plurality of concurrently operating applications in 
response to a request to receive the generated session identifier. 

Any comments considered necessary by applicant must be submitted no later 
than the payment of the issue fee and, to avoid processing delays, should preferably 
accompany the issue fee. Such submissions should be clearly labeled "Comments on 
Statement of Reasons for Allowance." 
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Conclusion 



6. Any inquiry concerning this communication or earlier communications from the 
examiner should be directed to Paul E. Callahan whose telephone number is (571) 272- 
3869. The examiner can normally be reached on M-F from 9 to 5. 

If attempts to reach the examiner by telephone are unsuccessful, the Examiner's 
supervisor, Emmanuel Moise, can be reached on (571) 272-3865. The fax phone 
number for the organization where this application or proceeding is assigned is: (571) 
273-8300. 
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